Bug 1636395
| Summary: | [RFE][nova][13]: Trusted Virtual Functions | ||
|---|---|---|---|
| Product: | Red Hat OpenStack | Reporter: | Sahid Ferdjaoui <sferdjao> |
| Component: | openstack-nova | Assignee: | Stephen Finucane <stephenfin> |
| Status: | CLOSED ERRATA | QA Contact: | Vadim Khitrin <vkhitrin> |
| Severity: | medium | Docs Contact: | |
| Priority: | high | ||
| Version: | 8.0 (Liberty) | CC: | atelang, berrange, chhudson, cpaquin, dasmith, dhill, dsneddon, dvd, ealcaniz, eglynn, fbaudin, gkeegan, jhakimra, jschluet, juvillar, kchamart, knoel, mariel, markmc, mbooth, mburns, nova-maint, oblaut, pmorey, qding, sbauza, sgordon, smykhail, srevivo, stalexan, stephenfin, vromanso, yrachman |
| Target Milestone: | z4 | Keywords: | FutureFeature, Triaged, ZStream |
| Target Release: | 13.0 (Queens) | ||
| Hardware: | Unspecified | ||
| OS: | Unspecified | ||
| Whiteboard: | |||
| Fixed In Version: | openstack-nova-17.0.7-3.el7ost | Doc Type: | Enhancement |
| Doc Text: |
This feature allows you to create instances with trusted SR-IOV virtual functions (VFs), such as changing the MAC address of the VF and enable promiscuous mode directly from the guest instance. These functions help you configure failover VFs for instances directly from the instance.
To configure trusted mode for VFs, you first set the `trusted` value of the `[pci] passthrough_whitelist` JSON configuration option in nova.conf. You then create the port with the `trusted=true` attribute in the binding profile. Make sure that the `vnic-type` attribute has the `hw_veb` or `direct` values.
|
Story Points: | --- |
| Clone Of: | 1382052 | Environment: | |
| Last Closed: | 2019-01-16 17:53:46 UTC | Type: | Bug |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
| Bug Depends On: | 1402584, 1656073 | ||
| Bug Blocks: | 1382052, 1442136, 1476900, 1500557, 1615667, 1656071, 1687560 | ||
|
Comment 7
Edu Alcaniz
2018-11-12 11:30:38 UTC
*** Bug 1656073 has been marked as a duplicate of this bug. *** Testing trusted binding using an automation script[1]: https://github.com/redhat-openstack/nfv-tempest-plugin/blob/devel/nfv_tempest_plugin/tests/scenario/test_nfv_sriov_usecases.py (overcloud) [stack@undercloud-0 ~]$ cat core_puddle_version 2018-12-13.4 overcloud) [stack@undercloud-0 ~]$ cat /etc/rhosp-release Red Hat OpenStack Platform release 13.0.4 (Queens) (overcloud) [stack@undercloud-0 ~]$ openstack server list --all +--------------------------------------+---------------------------------------------+--------+--------------------------------------------------------------------------------------+---------------------------------------+----------------------------------------------+ | ID | Name | Status | Networks | Image | Flavor | +--------------------------------------+---------------------------------------------+--------+--------------------------------------------------------------------------------------+---------------------------------------+----------------------------------------------+ | 1f577b82-8030-482c-8ebf-2370557f9ca3 | tempest-TestSriovScenarios-server-183118695 | ACTIVE | dpdkmgmt=50.20.135.104, 10.35.141.84; sriovone=60.20.135.100; sriovtwo=70.20.135.108 | rhel-guest-image-7.5-192.x86_64.qcow2 | m1.medium.huge_pages_cpu_pinning_numa_node-0 | +--------------------------------------+---------------------------------------------+--------+--------------------------------------------------------------------------------------+---------------------------------------+----------------------------------------------+ (overcloud) [stack@undercloud-0 ~]$ openstack port show tempest-port-smoke-313251186 +-----------------------+--------------------------------------------------------------------------------------------------+ | Field | Value | +-----------------------+--------------------------------------------------------------------------------------------------+ | admin_state_up | UP | | allowed_address_pairs | | | binding_host_id | compute-0.localdomain | | binding_profile | pci_slot='0000:05:0e.4', pci_vendor_info='8086:154c', physical_network='sriov-2', trusted='true' | | binding_vif_details | port_filter='False', vlan='601' | | binding_vif_type | hw_veb | | binding_vnic_type | direct | | created_at | 2018-12-25T18:59:50Z | | data_plane_status | None | | description | | | device_id | 1f577b82-8030-482c-8ebf-2370557f9ca3 | | device_owner | compute:nova | | dns_assignment | None | | dns_name | None | | extra_dhcp_opts | | | fixed_ips | ip_address='70.20.135.108', subnet_id='4dcdb2fa-132b-431a-9e85-18cd64136d69' | | id | 7349e7dc-95c6-48a1-80a3-631f06ea1194 | | ip_address | None | | mac_address | fa:16:3e:3b:db:7e | | name | tempest-port-smoke-313251186 | | network_id | df76e281-1bc7-4f10-8739-90eed178c391 | | option_name | None | | option_value | None | | port_security_enabled | True | | project_id | f1e3160201ee4d8bbdfae2db800ef3a7 | | qos_policy_id | None | | revision_number | 11 | | security_group_ids | 6214c912-e895-41cf-a9fb-c5c2463c491a | | status | ACTIVE | | subnet_id | None | | tags | | | trunk_details | None | | updated_at | 2018-12-25T19:00:36Z | +-----------------------+--------------------------------------------------------------------------------------------------+ Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHBA-2019:0087 *** Bug 1687560 has been marked as a duplicate of this bug. *** |